Project Number Date
test_Tails_ISO_21688-strict-umask 4 25 Jul 2026, 04:47

Feature Report

Steps Scenarios Features
Feature Passed Failed Skipped Pending Undefined Total Passed Failed Total Duration Status
The Tor enforcement is effective 37 1 1 0 0 39 7 1 8 2:0.166 Failed
Tags: @product
Feature The Tor enforcement is effective
As a Tails user I want all direct Internet connections I do by mistake or applications do by misconfiguration or buggy leaks to be blocked And as a Tails developer I want to ensure that the automated test suite detects firewall leaks reliably
Tags: @product
11.262
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.005
Given I have started Tails from DVD and logged in and the network is connected 10.831
Then the firewall's policy is to drop all IPv4 traffic 0.085
And the firewall is configured to only allow the clearnet and debian-tor users to connect directly to the Internet over IPv4 0.201
And the firewall's NAT rules only redirect traffic for the Unsafe Browser, Tor's TransPort, and DNSPort 0.089
And the firewall is configured to block all external IPv6 traffic 0.055
After features/support/hooks.rb:339 0.941
After features/support/hooks.rb:108 0.000
Tags: @product @doc
26.141
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.950
And I capture all network traffic 0.005
When I successfully start the Unsafe Browser 8.180
And I open the Tails homepage in the Unsafe Browser 7.472
And the Tails homepage loads in the Unsafe Browser 0.350
Then the firewall leak detector has detected leaks 0.180
After features/support/hooks.rb:339 0.643
After features/support/hooks.rb:108 0.032
Tags: @product
15.412
Scenario Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Steps
Given I have started Tails from DVD and logged in and the network is connected 10.083
And I capture all network traffic 0.005
And I disable Tails' firewall 0.141
When I do a TCP DNS lookup of "torproject.org" 5.182
Failed to resolve torproject.org:
;; communications error to 9.9.9.9#53: end of file
;; communications error to 9.9.9.9#53: end of file
;; no servers could be reached
.
<false> is not true. (Test::Unit::AssertionFailedError)
./features/step_definitions/firewall_leaks.rb:22:in `/^I do a TCP DNS lookup of "(.*?)"$/'
features/tor_enforcement.feature:28:in `When I do a TCP DNS lookup of "torproject.org"'
Then the firewall leak detector has detected leaks 0.000
After features/support/hooks.rb:339 4.905

SCENARIO FAILED: 'Anti test: Detecting TCP leaks of DNS lookups with the firewall leak detector' (at time 02:57:07)

Boot log: https://jenkins.tails.boum.org/job/test_Tails_ISO_21688-strict-umask/4/artifact/build-artifacts/02:57:07_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.file_content_var_log_boot.log

Screenshot: https://jenkins.tails.boum.org/job/test_Tails_ISO_21688-strict-umask/4/artifact/build-artifacts/02:57:07_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.png

Video: https://jenkins.tails.boum.org/job/test_Tails_ISO_21688-strict-umask/4/artifact/build-artifacts/02:57:07_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.mkv

Systemd journal: https://jenkins.tails.boum.org/job/test_Tails_ISO_21688-strict-umask/4/artifact/build-artifacts/02:57:07_Anti_test:_Detecting_TCP_leaks_of_DNS_lookups_with_the_firewall_leak_detector.journal

After features/support/hooks.rb:108 0.055
Tags: @product
10.275
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.846
And I capture all network traffic 0.004
And I disable Tails' firewall 0.111
When I do a UDP DNS lookup of "torproject.org" 0.171
Then the firewall leak detector has detected leaks 0.142
After features/support/hooks.rb:339 0.957
After features/support/hooks.rb:108 0.065
Tags: @product
14.187
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.790
And I capture all network traffic 0.005
And I disable Tails' firewall 0.115
When I send some ICMP pings 4.086
Then the firewall leak detector has detected leaks 0.189
After features/support/hooks.rb:339 1.002
After features/support/hooks.rb:108 0.058
10.189
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.004
Before features/support/hooks.rb:527 0.003
Given I have started Tails from DVD and logged in and the network is connected 9.805
When I open an untorified UDP connection to 1.2.3.4 on port 42 0.310
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.073
After features/support/hooks.rb:535 0.269
After features/support/hooks.rb:339 0.731
After features/support/hooks.rb:108 0.000
15.343
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.003
Before features/support/hooks.rb:527 0.001
Given I have started Tails from DVD and logged in and the network is connected 9.864
When I open an untorified ICMP connection to 1.2.3.4 5.388
Then the untorified connection fails 0.000
And the untorified connection is logged as dropped by the firewall 0.089
After features/support/hooks.rb:535 0.297
After features/support/hooks.rb:339 0.624
After features/support/hooks.rb:108 0.000
Tags: @product
17.353
Before features/support/hooks.rb:274 0.000
Before features/support/hooks.rb:281 0.006
Given I have started Tails from DVD without network and logged in 6.887
And the system DNS is using the local DNS resolver 0.007
And the network is plugged 0.027
And I successfully configure Tor 10.422
Then the system DNS is still using the local DNS resolver 0.008
After features/support/hooks.rb:339 0.900
After features/support/hooks.rb:108 0.000